Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
421 - - (複数のベンダ) (複数の製品) Securly Chrome Extensionにおける複数の脆弱性 - - 2026-06-5 13:34 2026-06-4 Show GitHub Exploit DB Packet Storm
422 6.7 警告
Adjacent
TP-Link Systems Inc. Tapo P300
Tapo L535E
Tapo D100C
複数のTP-LINK製品における重要情報の平文送信の脆弱性 CWE-Other
その他
CVE-2026-34126 2026-06-5 12:08 2026-06-5 Show GitHub Exploit DB Packet Storm
423 9.8 緊急
Network
deltasql Project deltasql deltasql Projectのdeltasqlにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2018-25412 2026-06-5 10:52 2026-05-30 Show GitHub Exploit DB Packet Storm
424 7.5 重要
Network
WinMTR WinMTR WinMTRにおける古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2018-25426 2026-06-5 10:52 2026-05-30 Show GitHub Exploit DB Packet Storm
425 7.8 重要
Local
4mhz Base64 Decoder 4mhzのBase64 Decoderにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2019-25634 2026-06-5 10:52 2026-03-24 Show GitHub Exploit DB Packet Storm
426 7.8 重要
Local
Google Android XR GoogleのAndroid XRにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-0072 2026-06-5 10:52 2026-06-1 Show GitHub Exploit DB Packet Storm
427 9.8 緊急
Network
TRENDnet TEW-432BRP Firmware TRENDnetのTEW-432BRP Firmwareにおける複数の脆弱性 CWE-74
CWE-77
CVE-2026-10060 2026-06-5 10:52 2026-05-29 Show GitHub Exploit DB Packet Storm
428 9.8 緊急
Network
TRENDnet TEW-432BRP Firmware TRENDnetのTEW-432BRP Firmwareにおける複数の脆弱性 CWE-74
CWE-77
CVE-2026-10061 2026-06-5 10:52 2026-05-29 Show GitHub Exploit DB Packet Storm
429 9.8 緊急
Network
TRENDnet TEW-432BRP Firmware TRENDnetのTEW-432BRP Firmwareにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-10062 2026-06-5 10:52 2026-05-29 Show GitHub Exploit DB Packet Storm
430 9.8 緊急
Network
TRENDnet TEW-432BRP Firmware TRENDnetのTEW-432BRP Firmwareにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-10063 2026-06-5 10:52 2026-05-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
319331 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2024-7051 2024-08-31 01:15 2024-08-31 Show GitHub Exploit DB Packet Storm
319332 6.1 MEDIUM
Network
gianniporto intothedark Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Gianni Porto IntoTheDark allows Reflected XSS.This issue affects IntoTheDark: from n/a thr… CWE-79
Cross-site Scripting
CVE-2024-43958 2024-08-31 01:15 2024-08-30 Show GitHub Exploit DB Packet Storm
319333 6.5 MEDIUM
Network
stitionai devika stitionai/devika main branch as of commit cdfb782b0e634b773b10963c8034dc9207ba1f9f is vulnerable to Local File Read (LFI) by Prompt Injection. The integration of Google Gimini 1.0 Pro with `HarmBlock… CWE-74
Injection
CVE-2024-6331 2024-08-31 01:15 2024-08-4 Show GitHub Exploit DB Packet Storm
319334 4.8 MEDIUM
Network
pagebuilderaddons web_and_woocommerce_addons_for_wpbakery_builder Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Page Builder Addons Web and WooCommerce Addons for WPBakery Builder allows Stored XSS.This… CWE-79
Cross-site Scripting
CVE-2024-43960 2024-08-31 01:12 2024-08-30 Show GitHub Exploit DB Packet Storm
319335 6.1 MEDIUM
Network
waspthemes yellowpencil Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WaspThemes YellowPencil Visual CSS Style Editor allows Reflected XSS.This issue affects Ye… CWE-79
Cross-site Scripting
CVE-2024-43963 2024-08-31 01:10 2024-08-30 Show GitHub Exploit DB Packet Storm
319336 7.5 HIGH
Network
ollama ollama extractFromZipFile in model.go in Ollama before 0.1.47 can extract members of a ZIP archive outside of the parent directory. CWE-22
Path Traversal
CVE-2024-45436 2024-08-31 01:08 2024-08-29 Show GitHub Exploit DB Packet Storm
319337 7.2 HIGH
Network
lopalopa responsive_school_management_system A SQL injection vulnerability in /smsa/admin_login.php in Kashipara Responsive School Management System v3.2.0 allows an attacker to execute arbitrary SQL commands via the "username" parameter of the… CWE-89
SQL Injection
CVE-2024-41236 2024-08-31 01:02 2024-08-29 Show GitHub Exploit DB Packet Storm
319338 5.5 MEDIUM
Local
irfanview irfanview An issue in the component EXR!ReadEXR+0x4eef0 of Irfanview v4.67.1.0 allows attackers to cause an access violation via a crafted EXR file. This vulnerability can lead to a Denial of Service (DoS). NVD-CWE-Other
CVE-2024-44915 2024-08-31 01:01 2024-08-29 Show GitHub Exploit DB Packet Storm
319339 5.5 MEDIUM
Local
irfanview irfanview An issue in the component EXR!ReadEXR+0x3df50 of Irfanview v4.67.1.0 allows attackers to cause an access violation via a crafted EXR file. This vulnerability can lead to a Denial of Service (DoS). NVD-CWE-Other
CVE-2024-44914 2024-08-31 01:01 2024-08-29 Show GitHub Exploit DB Packet Storm
319340 5.5 MEDIUM
Local
irfanview irfanview An issue in the component EXR!ReadEXR+0x40ef1 of Irfanview v4.67.1.0 allows attackers to cause an access violation via a crafted EXR file. This vulnerability can lead to a Denial of Service (DoS). NVD-CWE-Other
CVE-2024-44913 2024-08-31 01:01 2024-08-29 Show GitHub Exploit DB Packet Storm